I wrote this up in Bugzilla (Bug 2079) almost a month ago and there's no
progress, so I'm thinking I went to the wrong place.

> Subject definition was added to the virus defs this month (June 2) to daily
> 11126 by Arnaud Jacques.  The ASCII signature translation is
> "</body></html><script" which produces almost 1300 false alarms on my machine.
> Most of them are in the cache files of a Mac application called AppFresh.  I
> would think a less common signature is needed here.

The entry in the daily is:
"PUA.HTML.Infected.WebPage-2:3:*:3c2f626f64793e3c2f68746d6c3e3c736372697074"


-Al-
 
-- 
Al Varnell
Mountain View, CA



_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml

Reply via email to